Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- # 2024-04-13 22:24:03 by RouterOS 7.14.2
- # software id = 32V9-BHNT
- #
- # model = CRS326-24G-2S+
- # serial number = HCR08CG6ZB3
- /interface bridge
- add name=bridge port-cost-mode=short
- add ingress-filtering=no name=vlan_bridge port-cost-mode=short pvid=100 \
- vlan-filtering=yes
- /interface ethernet
- set [ find default-name=ether8 ] rx-flow-control=auto tx-flow-control=auto
- set [ find default-name=ether12 ] rx-flow-control=auto tx-flow-control=auto
- set [ find default-name=ether22 ] name=ether22-trunk
- set [ find default-name=ether24 ] comment=CCR2004 name=ether24-trunk \
- rx-flow-control=auto tx-flow-control=auto
- set [ find default-name=sfp-sfpplus1 ] rx-flow-control=auto sfp-rate-select=\
- low tx-flow-control=auto
- /interface vlan
- add interface=vlan_bridge name=vlan10-main vlan-id=10
- add interface=vlan_bridge name=vlan20-iot vlan-id=20
- add interface=vlan_bridge name=vlan30-guest vlan-id=30
- add interface=vlan_bridge name=vlan100-mgmt vlan-id=100
- /interface list
- add name=LAN
- add name=VLAN_mgmt
- add name=VLAN_main
- add name=VLAN_iot
- add name=VLAN_guest
- add name=trunks
- add name=WAN
- /interface wireless security-profiles
- set [ find default=yes ] supplicant-identity=MikroTik
- /ip hotspot profile
- set [ find default=yes ] html-directory=hotspot
- /ip smb users
- set [ find default=yes ] disabled=yes
- /port
- set 0 name=serial0
- /user group
- add name=homeassistant policy="reboot,read,write,policy,test,api,!local,!telne\
- t,!ssh,!ftp,!winbox,!password,!web,!sniff,!sensitive,!romon,!rest-api"
- add name=dude policy="local,telnet,ssh,ftp,reboot,read,write,policy,test,winbo\
- x,password,web,sniff,sensitive,api,romon,rest-api"
- /caps-man manager
- set enabled=yes
- /interface bridge port
- add bridge=vlan_bridge interface=VLAN_mgmt internal-path-cost=10 path-cost=10 \
- pvid=100
- add bridge=vlan_bridge interface=VLAN_main internal-path-cost=10 path-cost=10 \
- pvid=10
- add bridge=vlan_bridge interface=VLAN_iot internal-path-cost=10 path-cost=10 \
- pvid=20
- add bridge=vlan_bridge interface=VLAN_guest internal-path-cost=10 path-cost=\
- 10 pvid=30
- add bridge=vlan_bridge frame-types=admit-only-vlan-tagged interface=trunks \
- internal-path-cost=10 path-cost=10 pvid=100
- add bridge=bridge interface=LAN internal-path-cost=10 path-cost=10
- add bridge=vlan_bridge ingress-filtering=no interface=WAN pvid=100
- /ip firewall connection tracking
- set udp-timeout=10s
- /ip neighbor discovery-settings
- set discover-interface-list=all lldp-med-net-policy-vlan=100
- /interface bridge vlan
- add bridge=vlan_bridge tagged=vlan_bridge,sfp-sfpplus1,ether17 untagged=\
- ether1,ether5 vlan-ids=100
- add bridge=vlan_bridge tagged=vlan_bridge,sfp-sfpplus1,ether17 untagged=\
- ether1 vlan-ids=10
- add bridge=vlan_bridge tagged=vlan_bridge,sfp-sfpplus1,ether17 untagged=\
- ether9,ether10,ether11,ether12,ether13,ether14,ether15,ether16,ether1 \
- vlan-ids=20
- add bridge=vlan_bridge tagged=vlan_bridge,sfp-sfpplus1,ether17 untagged=\
- ether1 vlan-ids=30
- /interface list member
- add interface=ether1 list=WAN
- add interface=ether2 list=VLAN_mgmt
- add interface=ether3 list=VLAN_mgmt
- add interface=ether4 list=VLAN_mgmt
- add interface=ether5 list=VLAN_mgmt
- add interface=ether7 list=VLAN_mgmt
- add interface=ether8 list=VLAN_mgmt
- add interface=ether9 list=VLAN_iot
- add interface=ether11 list=VLAN_iot
- add interface=ether12 list=VLAN_iot
- add interface=ether13 list=VLAN_iot
- add interface=ether14 list=VLAN_iot
- add interface=ether15 list=VLAN_iot
- add interface=ether16 list=VLAN_iot
- add interface=ether17 list=trunks
- add interface=ether18 list=LAN
- add interface=ether19 list=LAN
- add interface=ether20 list=LAN
- add interface=ether21 list=LAN
- add interface=ether23 list=LAN
- add interface=ether6 list=VLAN_mgmt
- add interface=ether22-trunk list=trunks
- add interface=ether24-trunk list=trunks
- add interface=*27 list=trunks
- add interface=ether10 list=VLAN_iot
- add interface=sfp-sfpplus1 list=trunks
- /interface wifi cap
- set discovery-interfaces=all enabled=yes
- /ip dhcp-client
- add interface=vlan100-mgmt
- /ip firewall nat
- add action=masquerade chain=srcnat disabled=yes
- /ip smb shares
- set [ find default=yes ] directory=/flash/pub
- /snmp
- set enabled=yes trap-version=2
- /system clock
- set time-zone-name=Europe/Warsaw
- /system identity
- set name=CRS326
- /system note
- set show-at-login=no
- /system routerboard settings
- set boot-os=router-os
- /system swos
- set address-acquisition-mode=dhcp-only allow-from-ports="p1,p2,p3,p4,p5,p6,p7,\
- p8,p9,p10,p11,p12,p13,p14,p15,p16,p17,p18,p19,p20,p21,p22,p23,p24,p25,p26,\
- p27,p28,p29,p30,p31"
- /tool bandwidth-server
- set authenticate=no
- /tool sniffer
- set filter-interface=ether12
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement